Microsoft RDS
- Remote Desktop Services 2016 / 2019 / 2022
- Touch-Accept on session launch
- RDS behind ADFS and Web Application Proxy
Remote desktops concentrate risk: one stolen password opens a full Windows session. Mideye adds a second factor at the gateway, the broker, or the Windows host itself, over standard RADIUS or natively at the logon screen.
Step-by-step guides
Gateway-level integration guides for the major remote desktop and VDI platforms.
Beyond the gateway
Gateway MFA only sees sessions that pass through the gateway. Lateral RDP between servers, admin sessions from inside the network, and console logons never do. The Mideye Credential Provider runs on the Windows host itself and requires a second factor on every RDP and console logon, whatever path the connection took.
FAQ
Two ways. At the gateway: RDS with Web Application Proxy authenticates through ADFS, where the Mideye module adds the second factor before a session is brokered. At the host: the Mideye Credential Provider prompts for MFA at the Windows logon screen itself, covering direct RDP as well.
Yes. Citrix NetScaler / ADC authenticates users over RADIUS, so Mideye drops in as the authentication server, covering Citrix Virtual Apps and Desktops behind it. We publish guides for both the standard and load-balanced ADC setups.
Gateway-level MFA only protects sessions that pass through the gateway. The Mideye Credential Provider closes the gap: a native credential provider on each Windows host that requires a second factor on every RDP and console logon, whatever path the connection took.
Tell us how your users connect, and we will map gateway-level and host-level MFA with your team.
We use cookies and analytics to improve your experience and understand how our site is used.Privacy Policy